Executive Dashboard
This page applies to Snare Central v8.2.0 and later.
Note: in v8.6.0 the page was renamed from 'Dashboard' to 'Executive Dashboard'.
Overview
Snare Central Executive Dashboard provides System Health indicators and Events Collection statistics, allowing quick and easy access to critical data and quicker response to the emerging issues.
The dashboard uses Green-Orange-Red color scheme for status indicators.
The Dashboard contains the following components:
- 1 Snare Central Health Status
- 1.1 System Status
- 1.2 CPU Usage
- 1.3 Event Activity
- 1.4 Archive Usage
- 2 Collection and Reflection Statistics
- 2.1 Destinations
- 2.2 Recent Events
- 2.3 Total Events/24h
- 2.4 Total Bytes/24h
- 3 SAM Health Status
- 4 Events or Bytes per second over the last 3 hours
- 5 Historical Collection
- 6 Events Heat Map
- 7 Live Events
- 8 Scheduled Reports Status
Snare Central Health Status
Provides color-coded indicators of various Snare Central Health metrics.
Note: when the side menu is expanded, the values in the status cards are hidden.
System Status
Current status of Snare Central Health Checker. Updates every 1 minute.
The Health Checker combines most key aspects of system operation (depending on configuration), including, but not limited to: licensing, key services status, integrity checks, available disk space, Reflector destinations status and more.
Color-coding: green - normal operation, orange - warning, red - error.
Click the System Status card to navigate to Status > Snare Health Checker page for more details.
CPU Usage
CPU Usage percentage averaged across all cores.
Color-coding: green - up to 60%, orange - greater than 60%, red - greater than 80%
Click the CPU Usage card to navigate to Status > System Status page, then click CPU tab for more details.
Event Activity
Average Bytes per Second received during the past 1 minute.
Color-coding: green - normal operation, red - Collector service is not responding.
Click the Event Activity card to navigate to Status > Snare Health Checker page and scroll down to Collector/Reflector sections for more details.
Archive Usage
Indicates disk and inode usage percentage by Snare Archive.
Color-coding: green - normal operation, up to 80% of disk and/or inode usage, orange - warning, 81-85% of disk usage, or 81-90% of inode usage, red - above 85% of disk usage or above 90% of inode usage.
Note: these thresholds are configurable in Snare Health Checker.
Click the Archive Usage card to navigate to Status > Snare Health Checker page for more details.
Collection and Reflection Statistics
Provides Events Collection and Reflection statistics.
Note: when the side menu is expanded, the values in the status cards are hidden.
Destinations
Number of configured destinations for Snare Reflector.
Snare Reflector has 2 default internal destinations, reflecting to localhost ports 6170 (Snare format) and 6171 (Syslog format).
Additional destinations can be configured to reflect to other servers or 3rd party log analysis tools.
Color-coding: green - normal operation, red - at least one Destination is not reachable.
Click the Destination card to navigate to Status > Snare Health Checker page and scroll down to Collector/Reflector sections for more details.
Recent Events
Incoming Events per Second. Updates every 1 minute.
Color-coding: green - normal operation, red - Collector service is not responding.
Click the Recent Events card to navigate to Status > Snare Health Checker page and scroll down to Collector/Reflector sections for more details.
Total Events/24h
Total number of events collected by Snare Central Collector in the past 24 hours, or since last Collector/Reflector restart.
Color-coding: green - normal operation, red - Collector service is not responding.
Click the Total Events/24h card to navigate to Status > Snare Health Checker page and scroll down to Collector/Reflector sections for more details.
Total Bytes/24h
Total number of bytes collected by Snare Central Collector in the past 24 hours, or since last Collector/Reflector restart.
Color-coding: green - normal operation, red - Collector service is not responding.
Click the Total Bytes/24h card to navigate to Status > Snare Health Checker page and scroll down to Collector/Reflector sections for more details.
SAM Health Status
Provides color-coded indicators of various Snare Agents Manager (SAM) metrics.
Click to open SAM in a new tab
License Allowances
Number of licensed entities.
Color-coding: green - used licenses do not exceed allowance.
Click to find more details in Table View
Click to close Table View.
License Expiry
Indicates whether there are licenses that are about to expire or have already expired.